← Back to home
ICSA-16-196-02  ·  Published 2025-06-09  ·  View on CISA ICS-CERT ↗

Moxa MGate Authentication Bypass Vulnerability

CVSS 9.1 CRITICAL

CVEs (1)

Remediations

  • Moxa has released new versions of firmware, which has enhanced the security of the MB3x70 and MB3x80 families. This new firmware can be located on its web site at the following locations: MB3180, v1.8, MB3280, v2.7, and MB3480, v2.6 (http://www.moxa.com/support/sarch_result.aspx?type=soft&prod_id=73&type_id=4)
  • MB3170, v2.5 and MB3270, v2.7 (http://www.moxa.com/support/sarch_result.aspx?type=soft&prod_id=74&type_id=4)

Affected Vendors

Moxa

Affected Products (5)

Moxa · MGate MB3180 <=v1.8
Moxa · MGate MB3280 <=v2.7
Moxa · MGate MB3480 <=v2.6
Moxa · MGate MB3170 <=v2.5
Moxa · MGate MB3270 <=v2.7

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more